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QUESTION 21 

An administrator needs to implement a solution to provide users with remote access to applications 

from tablet devices using Citrix Receiver. 

Which component is required to fulfill these requirements? 

A. Citrix Web Interface 

B. Citrix Single Sign-on 

C. Citrix Provisioning Services 

D. Citrix Merchandising Server 

Answer: D 
QUESTION 22 

Scenario: Several users in an environment connect to corporate network resources through 
NetScaler Gateway. Sometimes these users only need to connect to the corporate XenDesktop 
environment. Some of the users do NOT need a VPN connection. 
How could an administrator configure access using NetScaler Gateway for this scenario? 

A. Enable Client Choices. 

B. Set Clientless Access to Allow. 

C. Configure a virtual server in Basic mode. 

D. Configure the Plug-in Type as Windows/Mac OS X. 

Answer: A 
QUESTION 23 

Which command should an administrator run at the command-line interface to show all the IPv6 
static routes in the attached Exhibit? 

Network Gateway Vlan Flags 

fe80::/64 f e80: : 2d0: 68f f : f el5 : f cl36 1 CA 

Click the Exhibit button to view the IPv6 static routes. 

A. show route6 

B. show route6 -ALL 

C. show route ipv6 all 

D. show route6::/0 fe80::/67 

Answer: A 
QUESTION 24 

An administrator must configure SmartAccess policies within an existing NetScaler Gateway 
implementation. 

Which action must the administrator perform to meet the objectives of this implementation? 

A. Upgrade Citrix XenApp from 6.0 to 6.5. 

B. Upgrade Web Interface from 5.3 to 5.4. 

C. Configure a next hop NetScaler Gateway virtual server. 

D. Configure the mode of the NetScaler Gateway virtual server. 

Answer: D 
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QUESTION 25 

Scenario: NetScaler is used to load balance Microsoft SharePoint for internal users. An 
administrator needs to configure the NetScaler device to allow for external access to the SharePoint 
site. 

Which action could the administrator take to meet the requirements of the scenario? 



A. Bind the SharePoint certificate to the virtual server. 

B. Add the Microsoft SharePoint server to a Web Interface site. 

C. Configure an Authentication, Auditing and Authorization server. 

D. Enable 'ICA proxy only' on the NetScaler Gateway virtual server. 



Answer: C 



QUESTION 26 

Scenario: An administrator configured a AAA virtual server. The AAA virtual server is NOT yet 
bound to a traffic management virtual server. 

Which two virtual servers could the administrator configure as traffic management virtual servers? 
(Choose two.) 



A. GSLB 

B. Load balancing 

C. Content switching 

D. NetScaler Gateway 



Answer: BC 



QUESTION 27 

Scenario: NetScaler Gateway is implemented to provide Web Resources, including Outlook Web 
Access and an SAP portal, to users. Marketing and Sales department employees normally work 
from outside the office location and should be able to access Web Resources from different types 
of devices that are NOT maintained by the company. 

Which user access connection method should an administrator configure to meet the needs of this 
scenario? 



A. Citrix Receiver 

B. PN Agent plug-in 

C. Clientless access 

D. Access Gateway plug-in 



Answer: C 



QUESTION 28 

A company plans to deploy secure LDAP authentication to their existing NetScaler Gateway 
implementation. 

What should an administrator enable to support secure LDAP? 



A. SSL security on the virtual server 

B. Secure LDAP in a pre-authentication policy 

C. SSL security type in an authentication policy 

D. Secure LDAP in the NetScaler Gateway Global settings 



Answer: C 
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QUESTION 29 

Scenario: An administrator manages a single NetScaler appliance. A Network IT Administrator has 
prohibited access to VLAN1 and is requesting that the NetScaler Administrator change the 
management IP address of the appliance. 
Which IP address should the NetScaler Administrator change? 



A. VIP 

B. MIP 

C. NSIP 

D. SNIP 

Answer: C 



QUESTION 30 

An administrator plans to configure single sign-on with smart card on NetScaler. 
What should the administrator configure to use smart cards in the environment? 



A. Smart Card middleware 

B. Delegation on Active Directory 

C. Secure LDAP on the Domain Controller 

D. Web Interface on the Domain Controller 



Answer: B 



QUESTION 31 

Scenario: Multiple virtual servers are configured in a NetScaler Gateway implementation. 
Corporate policy requires that an administrator restrict the number of users who can log on through 
each virtual server. 

What could the administrator specify to meet the needs of this scenario? 

A. Max Users in a session policy 

B. Max Users on the virtual server 

C. Max Connections on the virtual server 

D. Allowed users to logon in the Access Gateway Global Settings 



Answer: B 



QUESTION 32 

Scenario: Two NetScaler Gateway virtual servers are configured on a NetScaler appliance. Each 
NetScaler Gateway virtual server is used to enable secure remote access to dedicated XenDesktop 
sites for separate divisions: 

Division A: 

NetScaler Gateway: NG-A 
XenDesktop Controller: DDC-A 
Division B: 

NetScaler Gateway: NG-B 
XenDesktop Controller: DDC-B 

Each XenDesktop site is placed in its own Active Directory. Firewalls prevent any communication 
between the divisions. 

An administrator should configure the Secure Ticket Authority on the NetScaler for Division B, 

without causing any configuration issues for NG-A, by binding . (Choose the correct 

option to complete the sentence.) 
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A. DDC-B to NG-A 

B. DDC-B to NG-B 

C. DDC-B to NG-A and DDC-A 

D. DDC-A and DDC-B to a load-balancing virtual server 
Answer: B 

QUESTION 33 

Scenario: An administrator has configured several load balancing virtual servers on a NetScaler to 
accelerate the Web content. After an update on the Web content platform, all the servers need the 
client IP address to perform tracking operations. 

Which two tasks should the administrator complete to pass the client IP address to all the load 
balancing virtual servers? (Choose two.) 

A. Activate the Source-IP feature on the service. 

B. Configure a rewrite policy, then bind it globally. 

C. Activate the Client-IP Header insertion on the services. 

D. Configure a responder policy, then bind it to all servers. 

Answer: BC 
QUESTION 34 

Scenario: A virtual server has been configured in the Content Switching node to provide multiple 
Web services using the full website path location. This website contains details that can only be 
displayed using a specific Web browser such as Internet Explorer. 

Which two actions must an administrator perform to ensure that users are informed of the browser 
requirements? (Choose two.) 

A. Configure Advanced Expression policies to determine the type of browser used. 

B. Create a backup server to display a website that informs users of the browser requirements. 

C. Configure a redirect URL to redirect users to a website that informs them of the browser requirements. 

D. Configure a default policy to redirect users to a website that informs them of the browser requirements. 

Answer: AD 
QUESTION 35 

Which action could an administrator take to configure auditing of logon events for all the employees 
who connected through the NetScaler Gateway for the current day? 

A. Run "df -h" from the NetScaler command-line interface. 

B. Configure a Syslog policy to send events to a remote server. 

C. Run "cat aaa. debug" from the NetScaler command-line interface. 

D. Review logon events through Reporting > Access Gateway > AAA > AAA Sessions. 

Answer: B 
QUESTION 36 

An administrator is reviewing the following output: 

VIP(141.128.58.149:80:UP:WEIGHTEDRR) : Hits (38200495, 18/sec) Mbps(1.02) 
Pers(OFF) Err(0) 

Pkt(186/sec, 610 bytes) actSvc(4) Def Pol (NONE) override (0) 
Conn: Clt(253, 1/sec, OE[252\]) Svr(3) 

S (141.128.49.40:80:UP) Hits ( 94430 63 , 4/sec, P[2602342, 0/sec\]) ATr ( 5 ) 
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Mbps (0 .23) BWlmt (100 kbits) RspTime (112 . 58 ms) 
Other: Pkt(36/sec, 712 bytes) Wt(10000) RHits(31555) 
Conn: CSvr(42, 0/sec) MCSvr(20) OE(16) RP(ll) SQ(0) 

How much traffic is being passed through the public IP address based on the output displayed 
above? 

A. 100 kbits 

B. 1.02 Mbps 

C. 0.23 Mbps 

D. 112.58 ms 

Answer: B 
QUESTION 37 

Scenario: An administrator has configured LDAPS authentication, but users are unable to log on to 
the NetScaler Gateway virtual server. The same users are able to log on to other systems. 
Which action could the administrator take to troubleshoot this issue? 

A. Run "telnet ldapsrv.example.com 389" from a PC. 

B. Run telnet from a LDAPS server to the NSIP address. 

C. Run "telnet ldapsrv.example.com 636" from the NetScaler shell. 

D. Run "telnet ldapsrv.example.com:636" from the NetScaler command-line interface. 

Answer: C 
QUESTION 38 

Scenario: An administrator needs to deliver production applications to users. Encryption must be 
maintained between the users' managed devices. 

Which two certificates could the administrator use to meet this requirement? (Choose two.) 

A. Public 

B. Private 

C. Trusted 

D. Intermediate 

Answer: AB 
QUESTION 39 

Scenario: An administrator plans to publish 2010 Outlook Web Access through Citrix NetScaler 
AAA and allow users to authenticate using domain credentials and their RSA tokens. Users must 
also have the ability to change the password when it has expired. 

The administrator should configure for user authentication and for RSA token 

authentication. (Choose the correct set of options to complete the sentence.) 

A. LDAP; LDAPS 

B. SAML; RADIUS 

C. LDAPS; RADIUS 

D. RADIUS; RADIUS 

Answer: C 
QUESTION 40 

An administrator is setting up two-factor authentication, using Active Directory and RSA SecurlD. 
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Which actions could the administrator take to protect the environment from a brute force attack? 

A. Bind Active Directory as Primary authentication priority 100. 
Bind RSA SecurlD as Primary authentication priority 110. 

B. Bind Active Directory as Primary authentication priority 110. 
Bind RSA SecurlD as Primary authentication priority 100. 

C. Bind Active Directory as Secondary authentication priority 100. 
Bind RSA SecurlD as Primary authentication priority 100. 

D. Bind Active Directory as Primary authentication priority 100. 
Bind RSA SecurlD as Secondary authentication priority 100. 

Answer: C 
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